nitter
Bil Corry
@bilcorry
CISO at
@sardineai
. Treasurer of
@OWASP
Board of Directors. (he/him) qatta' mIghtaHghach.
Phoenix, AZ
linkedin.com/in/bilcorry/
Joined July 2009
Tweets
8,305
Following
139
Followers
776
Likes
17,402
Tweets
Tweets & Replies
Media
Search
Filter
Retweets
Media
Videos
News
Verified
Native videos
Replies
Links
Images
Safe
Quotes
Pro videos
Exclude
Retweets
Media
Videos
News
Verified
Native videos
Replies
Links
Images
Safe
Quotes
Pro videos
Time range
-
Near
Load newest
Bil Corry
@bilcorry
19 Sep 2017
Dev Summit at
@appsecusa
is packed!
Bil Corry
@bilcorry
19 Sep 2017
So it begins!
Bil Corry
@bilcorry
19 Sep 2017
Here's some of the hard-working
@appsecusa
team. I'm around all week, say hello!
2
1
5
Bil Corry
@bilcorry
18 Sep 2017
Replying to
@Wikisteff
@supergovernance
@CDS_GC
For the roles I hire, it's a degree, or equivalent experience. Lots of talented folks without degrees.
2
Bil Corry
@bilcorry
18 Sep 2017
Replying to
@infosecdad
@shehackspurple
@owasp
@AppSecCali
Jan 30-31 for conference, Jan 29 for training:
2018.appseccalifornia.org/in…
cc
@RAGreenberg
2
4
1
6
Bil Corry
@bilcorry
17 Sep 2017
Replying to
@Modiphius
Page 11 has a sentence that was cut off: "To assess his condition, the Player Characters will need to perform a scan with a medical"
1
Bil Corry
@bilcorry
17 Sep 2017
Replying to
@b1ack0wl
@shehackspurple
True for non-Infosec experiences as well. That jar of tongue depressors in your doc office, the salt shaker at the restaurant, etc.
3
Bil Corry
@bilcorry
17 Sep 2017
Replying to
@selenakyle
Earlier is better, with multiple check-ins. Minimum 3: ideation, wire-frame, just prior to release. For all stakeholders, not just security.
1
Bil Corry
@bilcorry
17 Sep 2017
Replying to
@troyhunt
@shehackspurple
If that's your threat model, then use a hidden encrypted volume. You can give up password to decoy volume:
linuxvoice.com/hidden-encryp…
2
Bil Corry
@bilcorry
16 Sep 2017
Speaks to the larger issue that companies believe accountability for security rests solely on the InfoSec team.
1
Bil Corry
@bilcorry
16 Sep 2017
Seems perverse that the Equifax CSO and CIO had to retire and are replaced by IT VPs. Operationally, IT owns patching and failed to do so.
1
3
8
Bil Corry
@bilcorry
16 Sep 2017
Replying to
@mikewest
Ease of returns has me shopping locally, typically at Costco, for something like that. Or I'll order online from a local store.
Bil Corry
@bilcorry
15 Sep 2017
Replying to
@shehackspurple
Theme song for your team:
youtube.com/watch?v=YdXQJS…
Bil Corry
@bilcorry
11 Sep 2017
[Unverified] Partial SOP Bypass in every browser - something to keep an eye on.
lists.w3.org/Archives/Public…
1
Bil Corry
@bilcorry
11 Sep 2017
Replying to
@matthew_d_green
Computers are so much faster than 20 years ago, yet they don't feel faster. Part of why sales have slowed, no reason to get new one.
Bil Corry
@bilcorry
10 Sep 2017
Replying to
@dougturner
Totally agree and was wonderful to see in action - something to strive for.
Bil Corry
@bilcorry
10 Sep 2017
Replying to
@dougturner
She likely has never heard of Sikhism. This follow up statement is awesome:
m.huffingtonpost.ca/2017/09/…
1
1
2
Bil Corry
@bilcorry
8 Sep 2017
Replying to
@shehackspurple
@manicode
I was joking that a benevolent hacker could exploit the vuln, then with that access, patch the vuln for the owner.
1
1
Bil Corry
@bilcorry
8 Sep 2017
Replying to
@manicode
@shehackspurple
Too bad it's illegal to patch them using RCE.
1
Bil Corry
@bilcorry
3 Sep 2017
Replying to
@__apf__
When I lived in Europe, I had little junk mail. Now I'm back in the States and I get it every day. Not sure why the difference...
Load more